Vulnerability Name:

CVE-2014-3215 (CCN-93138)

Assigned:2012-12-08
Published:2012-12-08
Updated:2019-01-03
Summary:seunshare in policycoreutils 2.2.5 is owned by root with 4755 permissions, and executes programs in a way that changes the relationship between the setuid system call and the getresuid saved set-user-ID value, which makes it easier for local users to gain privileges by leveraging a program that mistakenly expected that it could permanently drop privileges.
CVSS v3 Severity:9.3 Critical (CCN CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H)
Exploitability Metrics:Attack Vector (AV): Local
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): None
Scope:Scope (S): Changed
Impact Metrics:Confidentiality (C): High
Integrity (I): High
Availibility (A): High
CVSS v2 Severity:6.9 Medium (CVSS v2 Vector: AV:L/AC:M/Au:N/C:C/I:C/A:C)
5.6 Medium (Temporal CVSS v2 Vector: AV:L/AC:M/Au:N/C:C/I:C/A:C/E:U/RL:U/RC:UR)
Exploitability Metrics:Access Vector (AV): Local
Access Complexity (AC): Medium
Authentication (Au): None
Impact Metrics:Confidentiality (C): Complete
Integrity (I): Complete
Availibility (A): Complete
6.9 Medium (CCN CVSS v2 Vector: AV:L/AC:M/Au:N/C:C/I:C/A:C)
5.6 Medium (CCN Temporal CVSS v2 Vector: AV:L/AC:M/Au:N/C:C/I:C/A:C/E:U/RL:U/RC:UR)
Exploitability Metrics:Access Vector (AV): Local
Access Complexity (AC): Medium
Athentication (Au): None
Impact Metrics:Confidentiality (C): Complete
Integrity (I): Complete
Availibility (A): Complete
6.9 Medium (REDHAT CVSS v2 Vector: AV:L/AC:M/Au:N/C:C/I:C/A:C)
5.6 Medium (REDHAT Temporal CVSS v2 Vector: AV:L/AC:M/Au:N/C:C/I:C/A:C/E:U/RL:U/RC:UR)
Exploitability Metrics:Access Vector (AV): Local
Access Complexity (AC): Medium
Authentication (Au): None
Impact Metrics:Confidentiality (C): Complete
Integrity (I): Complete
Availibility (A): Complete
Vulnerability Type:CWE-264
CWE-270
Vulnerability Consequences:Gain Privileges
References:Source: CONFIRM
Type: UNKNOWN
http://advisories.mageia.org/MGASA-2014-0251.html

Source: MITRE
Type: CNA
CVE-2014-3215

Source: SUSE
Type: UNKNOWN
openSUSE-SU-2014:0749

Source: MLIST
Type: UNKNOWN
[oss-security] 20140429 local privilege escalation due to capng_lock as used in seunshare

Source: MLIST
Type: UNKNOWN
[oss-security] 20140430 Re: local privilege escalation due to capng_lock as used in seunshare

Source: MLIST
Type: UNKNOWN
[oss-security] 20140507 Re: local privilege escalation due to capng_lock as used in seunshare

Source: REDHAT
Type: UNKNOWN
RHSA-2015:0864

Source: CCN
Type: oss-security Mailing List, Wed 14 May 2014
CVE Reuest: Django: Malformed URLs from user input incorrectly validated

Source: SECUNIA
Type: UNKNOWN
59007

Source: CCN
Type: SELinux Web site
policycoreutils

Source: MANDRIVA
Type: UNKNOWN
MDVSA-2015:156

Source: CONFIRM
Type: UNKNOWN
http://www.oracle.com/technetwork/topics/security/linuxbulletinjan2016-2867209.html

Source: BID
Type: UNKNOWN
67341

Source: CCN
Type: BID-67341
policycoreutils seunshare CVE-2014-3215 Local Privilege Escalation Vulnerability

Source: CCN
Type: Red Hat Bugzilla Bug 1095855
CVE-2014-3215 policycoreutils: local privilege escalation via seunshare

Source: XF
Type: UNKNOWN
policycoreutils-cve20143215-priv-esc(93138)

Vulnerable Configuration:Configuration 1:
  • cpe:/a:selinuxproject:policycoreutils:2.2.5:*:*:*:*:*:*:*

  • Configuration RedHat 1:
  • cpe:/o:redhat:enterprise_linux:7:*:*:*:*:*:*:*

  • Configuration RedHat 2:
  • cpe:/o:redhat:enterprise_linux:7::client:*:*:*:*:*

  • Configuration RedHat 3:
  • cpe:/o:redhat:enterprise_linux:7::computenode:*:*:*:*:*

  • Configuration RedHat 4:
  • cpe:/o:redhat:enterprise_linux:7::server:*:*:*:*:*

  • Configuration RedHat 5:
  • cpe:/o:redhat:enterprise_linux:7::workstation:*:*:*:*:*

  • Configuration RedHat 6:
  • cpe:/o:redhat:enterprise_linux:6:*:*:*:*:*:*:*

  • Configuration RedHat 7:
  • cpe:/o:redhat:enterprise_linux:6::client:*:*:*:*:*

  • Configuration RedHat 8:
  • cpe:/o:redhat:enterprise_linux:6::computenode:*:*:*:*:*

  • Configuration RedHat 9:
  • cpe:/o:redhat:enterprise_linux:6::server:*:*:*:*:*

  • Configuration RedHat 10:
  • cpe:/o:redhat:enterprise_linux:6::workstation:*:*:*:*:*

  • * Denotes that component is vulnerable
    Oval Definitions
    Definition IDClassTitleLast Modified
    oval:org.opensuse.security:def:20143215
    V
    CVE-2014-3215
    2022-05-20
    oval:org.opensuse.security:def:34680
    P
    Security update for openexr (Important)
    2022-01-12
    oval:org.opensuse.security:def:35280
    P
    Security update for libqt4 (Important)
    2021-12-22
    oval:org.opensuse.security:def:31325
    P
    Security update for the Linux Kernel (Live Patch 40 for SLE 12 SP3) (Important)
    2021-12-14
    oval:org.opensuse.security:def:34596
    P
    Security update for webkit2gtk3 (Important)
    2021-11-23
    oval:org.opensuse.security:def:34000
    P
    Security update for postgresql10 (Important)
    2021-11-22
    oval:org.opensuse.security:def:34585
    P
    Security update for systemd (Moderate)
    2021-11-04
    oval:org.opensuse.security:def:34584
    P
    Security update for tomcat (Important)
    2021-11-03
    oval:org.opensuse.security:def:30263
    P
    Security update for binutils (Moderate)
    2021-11-02
    oval:org.opensuse.security:def:31286
    P
    Security update for the Linux Kernel (Live Patch 39 for SLE 12 SP3) (Important)
    2021-10-18
    oval:org.opensuse.security:def:34518
    P
    Security update for unrar (Moderate)
    2021-08-25
    oval:org.opensuse.security:def:30110
    P
    Security update for cpio (Important)
    2021-08-14
    oval:org.opensuse.security:def:31237
    P
    Security update for the Linux Kernel (Live Patch 34 for SLE 12 SP3) (Important)
    2021-07-27
    oval:org.opensuse.security:def:33685
    P
    Security update for MozillaFirefox (Important)
    2021-07-16
    oval:org.opensuse.security:def:34474
    P
    Security update for ovmf (Important)
    2021-06-24
    oval:org.opensuse.security:def:33674
    P
    Security update for webkit2gtk3 (Important)
    2021-06-17
    oval:org.opensuse.security:def:36118
    P
    emacs-22.3-4.42.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:36077
    P
    a2ps-4.13-1326.37.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:33904
    P
    Security update for avahi (Important)
    2021-06-03
    oval:org.opensuse.security:def:34449
    P
    Security update for qemu (Important)
    2021-06-02
    oval:org.opensuse.security:def:31181
    P
    Security update for dhcp (Important)
    2021-06-01
    oval:org.opensuse.security:def:34410
    P
    Security update for the Linux Kernel (Important)
    2021-04-16
    oval:org.opensuse.security:def:31144
    P
    Security update for the Linux Kernel (Live Patch 35 for SLE 12 SP3) (Important)
    2021-04-07
    oval:org.opensuse.security:def:32066
    P
    Security update for the Linux Kernel (Live Patch 38 for SLE 12 SP3) (Important)
    2021-04-07
    oval:org.opensuse.security:def:31346
    P
    Security update for java-1_8_0-openjdk (Moderate)
    2021-02-19
    oval:org.opensuse.security:def:33768
    P
    Security update for java-1_7_1-ibm (Important)
    2021-02-18
    oval:org.opensuse.security:def:30024
    P
    Security update for jasper (Important)
    2021-02-16
    oval:org.opensuse.security:def:33673
    P
    Security update for ImageMagick (Important)
    2021-01-22
    oval:org.opensuse.security:def:30318
    P
    Security update for tiff (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:35196
    P
    Security update for libcap-ng (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:30575
    P
    Security update for mozilla-nspr (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:35062
    P
    Security update for IBM Java
    2020-12-01
    oval:org.opensuse.security:def:31107
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:26743
    P
    libdrm on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:30939
    P
    Security update for glibc (Important)
    2020-12-01
    oval:org.opensuse.security:def:35395
    P
    Security update for openslp (Important)
    2020-12-01
    oval:org.opensuse.security:def:27028
    P
    sblim-sfcb on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27422
    P
    java-1_7_1-ibm-devel on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:29675
    P
    Security update for djvulibre (Low)
    2020-12-01
    oval:org.opensuse.security:def:34303
    P
    Security update for quagga (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:28192
    P
    Security update for libcap-ng (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:34915
    P
    Security update for elfutils
    2020-12-01
    oval:org.opensuse.security:def:30425
    P
    Security update for xorg-x11-libXv (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:30792
    P
    Security update for bind (Important)
    2020-12-01
    oval:org.opensuse.security:def:35329
    P
    Security update for microcode_ctl (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26819
    P
    ruby on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27320
    P
    wireshark on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32028
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:29663
    P
    Security update for cvs (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:34057
    P
    Security update for libvorbis (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27519
    P
    nagios on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:29967
    P
    Security update for libpoppler
    2020-12-01
    oval:org.opensuse.security:def:30367
    P
    Security update for wireshark (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:30586
    P
    Security update for openssh (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:35221
    P
    Security update for liblouis (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26744
    P
    libexif on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31026
    P
    Security update for java-1_7_0-ibm (Important)
    2020-12-01
    oval:org.opensuse.security:def:35439
    P
    Security update for openvpn-openssl1 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27085
    P
    apache2-mod_security2 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27461
    P
    libmspack-devel on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:29748
    P
    Security update for gd (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:34361
    P
    Security update for tar (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:35156
    P
    Security update for the SUSE Linux Enterprise 11 SP3 Kernel for Teradata (Important)
    2020-12-01
    oval:org.opensuse.security:def:30574
    P
    Security update for MozillaFirefox, mozilla-nss (Important)
    2020-12-01
    oval:org.opensuse.security:def:34972
    P
    Security update for gd (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:30469
    P
    Security update for PHP5
    2020-12-01
    oval:org.opensuse.security:def:30882
    P
    Security update for Mozilla Firefox
    2020-12-01
    oval:org.opensuse.security:def:35368
    P
    Security update for ncurses (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26947
    P
    libexif on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27373
    P
    avahi-compat-howl-devel on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:29664
    P
    Security update for cyrus-imapd
    2020-12-01
    oval:org.opensuse.security:def:34146
    P
    Security update for opensc (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:28157
    P
    Security update for the Linux Kernel (Critical)
    2020-12-01
    oval:org.opensuse.security:def:34816
    P
    Security update for apport (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:30406
    P
    Security update for xorg-x11-libs
    2020-12-01
    oval:org.opensuse.security:def:30660
    P
    Security update for ImageMagick (Important)
    2020-12-01
    oval:org.opensuse.security:def:26755
    P
    libnetpbm10 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27169
    P
    libFLAC++6 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31390
    P
    Security update for pam
    2020-12-01
    oval:org.opensuse.security:def:27475
    P
    libpulse-devel on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:29880
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:com.redhat.rhba:def:20152161
    P
    RHBA-2015:2161: libcap-ng bug fix and enhancement update (Important)
    2015-11-19
    oval:com.redhat.rhsa:def:20150864
    P
    RHSA-2015:0864: kernel security and bug fix update (Important)
    2015-04-21
    oval:com.ubuntu.xenial:def:20143215000
    V
    CVE-2014-3215 on Ubuntu 16.04 LTS (xenial) - medium.
    2014-05-08
    oval:com.ubuntu.precise:def:20143215000
    V
    CVE-2014-3215 on Ubuntu 12.04 LTS (precise) - medium.
    2014-05-08
    oval:com.ubuntu.xenial:def:201432150000000
    V
    CVE-2014-3215 on Ubuntu 16.04 LTS (xenial) - medium.
    2014-05-08
    oval:com.ubuntu.trusty:def:20143215000
    V
    CVE-2014-3215 on Ubuntu 14.04 LTS (trusty) - medium.
    2014-05-08
    BACK
    selinuxproject policycoreutils 2.2.5